<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Outlook 2007 Certificate Error?</title>
	<atom:link href="http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/</link>
	<description>Just another IT guy!</description>
	<pubDate>Sat, 17 May 2008 00:42:57 +0000</pubDate>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>By: kingofbytes</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-4161</link>
		<dc:creator>kingofbytes</dc:creator>
		<pubDate>Mon, 05 May 2008 21:53:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-4161</guid>
		<description>Sir, you are to be commended for your contributions.  Thank you very much!
-Kingofbytes</description>
		<content:encoded><![CDATA[<p>Sir, you are to be commended for your contributions.  Thank you very much!<br />
-Kingofbytes</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ketrasap</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3844</link>
		<dc:creator>ketrasap</dc:creator>
		<pubDate>Thu, 17 Apr 2008 07:03:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3844</guid>
		<description>Thanks Alot,

I've been trying to fix this issue for months now.</description>
		<content:encoded><![CDATA[<p>Thanks Alot,</p>
<p>I&#8217;ve been trying to fix this issue for months now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Elan Shudnow</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3329</link>
		<dc:creator>Elan Shudnow</dc:creator>
		<pubDate>Tue, 01 Apr 2008 10:13:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3329</guid>
		<description>I have an article that details publishing the autodiscover service in ISA:
http://www.shudnow.net/2007/07/15/publishing-exchange-2007-autodisover-in-isa-2006/

One of the things is that ISA 2006 will only read the CN or the 1st SAN name, so you have to trick ISA to make autodiscover publishing to work.  I explain how to do that.</description>
		<content:encoded><![CDATA[<p>I have an article that details publishing the autodiscover service in ISA:<br />
<a href="http://www.shudnow.net/2007/07/15/publishing-exchange-2007-autodisover-in-isa-2006/" rel="nofollow">http://www.shudnow.net/2007/07/15/publishing-exchange-2007-autodisover-in-isa-2006/</a></p>
<p>One of the things is that ISA 2006 will only read the CN or the 1st SAN name, so you have to trick ISA to make autodiscover publishing to work.  I explain how to do that.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: petoulachi</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3328</link>
		<dc:creator>petoulachi</dc:creator>
		<pubDate>Tue, 01 Apr 2008 08:57:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3328</guid>
		<description>Hi,

I can't make autodiscover work from outside, maybe you could take a look at http://forums.msexchange.org/Another_Autodiscover_problem/m_1800470564/tm.htm if you have a solution :)</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I can&#8217;t make autodiscover work from outside, maybe you could take a look at <a href="http://forums.msexchange.org/Another_Autodiscover_problem/m_1800470564/tm.htm" rel="nofollow">http://forums.msexchange.org/Another_Autodiscover_problem/m_1800470564/tm.htm</a> if you have a solution <img src='http://www.shudnow.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: njaggers</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3185</link>
		<dc:creator>njaggers</dc:creator>
		<pubDate>Sun, 23 Mar 2008 22:40:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3185</guid>
		<description>Thanks!  I went into EMC and changed the setting that way.  The PS script kept giving me problems.</description>
		<content:encoded><![CDATA[<p>Thanks!  I went into EMC and changed the setting that way.  The PS script kept giving me problems.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Elan Shudnow</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3138</link>
		<dc:creator>Elan Shudnow</dc:creator>
		<pubDate>Sat, 22 Mar 2008 16:06:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3138</guid>
		<description>It's not saying it cannot find your DC, it's saying it cannot find CASServer, which is your client access server, but might also be a DC if you configured it that way (not recommended).  Make sure you replace the word CASServer with the server that has the RPC over HTTP Proxy component installed on it which should be a Client Access Server.

So if your Client Access Server's name is CHIEXCCAS01 and your certificate has a name of mail.shudnow.net, you would do:

set-outlookanywhere -identity CHIEXCCAS01 -externalhostname “mail.shudnow.net” -externalauthenticationmethod “basic”-ssloffloading:$false

Make sure you replace externalauthenticationmethod with clientauthenticationmethod if you're using SP1.

If that doesn't work, as I said, go into the Exchange Management Console and just manually set it.</description>
		<content:encoded><![CDATA[<p>It&#8217;s not saying it cannot find your DC, it&#8217;s saying it cannot find CASServer, which is your client access server, but might also be a DC if you configured it that way (not recommended).  Make sure you replace the word CASServer with the server that has the RPC over HTTP Proxy component installed on it which should be a Client Access Server.</p>
<p>So if your Client Access Server&#8217;s name is CHIEXCCAS01 and your certificate has a name of mail.shudnow.net, you would do:</p>
<p>set-outlookanywhere -identity CHIEXCCAS01 -externalhostname “mail.shudnow.net” -externalauthenticationmethod “basic”-ssloffloading:$false</p>
<p>Make sure you replace externalauthenticationmethod with clientauthenticationmethod if you&#8217;re using SP1.</p>
<p>If that doesn&#8217;t work, as I said, go into the Exchange Management Console and just manually set it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: njaggers</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3118</link>
		<dc:creator>njaggers</dc:creator>
		<pubDate>Sat, 22 Mar 2008 03:27:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3118</guid>
		<description>Thanks for the reply.  I inputed this command into PS:  

set-outlookanywhere -identity CAServer -externalhostname "mail.domain.com" -externalauthenticationmethod "basic"-ssloffloading:$false

This is the response from PS:  set-outlookanywhere : the operation could not be performed because object 'CAServer' could not be found on the domain controller 'server.local'

What am I missing here?  All my mail flow is working correctly so I don't know why PS reported cannot locate my dc.  Also, when I attempted to input the command into PS using the -server command instead of the -identity command, this is what returned:  set-outlookanywhere : 

a parameter cannot be found that matches parameter name 'server'

I think I have been messing with this so long I am missing something obvious.  Any insight would be appreciated.</description>
		<content:encoded><![CDATA[<p>Thanks for the reply.  I inputed this command into PS:  </p>
<p>set-outlookanywhere -identity CAServer -externalhostname &#8220;mail.domain.com&#8221; -externalauthenticationmethod &#8220;basic&#8221;-ssloffloading:$false</p>
<p>This is the response from PS:  set-outlookanywhere : the operation could not be performed because object &#8216;CAServer&#8217; could not be found on the domain controller &#8217;server.local&#8217;</p>
<p>What am I missing here?  All my mail flow is working correctly so I don&#8217;t know why PS reported cannot locate my dc.  Also, when I attempted to input the command into PS using the -server command instead of the -identity command, this is what returned:  set-outlookanywhere : </p>
<p>a parameter cannot be found that matches parameter name &#8217;server&#8217;</p>
<p>I think I have been messing with this so long I am missing something obvious.  Any insight would be appreciated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Elan Shudnow</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3097</link>
		<dc:creator>Elan Shudnow</dc:creator>
		<pubDate>Thu, 20 Mar 2008 22:08:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3097</guid>
		<description>You can try going into the Exchange Management Console and specifying the proper URL there.  

Or you can try doing Set instead of Enable.

RTM:
Set-OulookAnywhere -Server CASServer -ExternalHostname “mail.shudnow.net” -ExternalAuthenticationMethod “Basic”-SSLOffloading:$False

SP1:
Set-OulookAnywhere -Server CASServer -ExternalHostname “mail.shudnow.net” -ClientAuthenticationMethod “Basic”-SSLOffloading:$False</description>
		<content:encoded><![CDATA[<p>You can try going into the Exchange Management Console and specifying the proper URL there.  </p>
<p>Or you can try doing Set instead of Enable.</p>
<p>RTM:<br />
Set-OulookAnywhere -Server CASServer -ExternalHostname “mail.shudnow.net” -ExternalAuthenticationMethod “Basic”-SSLOffloading:$False</p>
<p>SP1:<br />
Set-OulookAnywhere -Server CASServer -ExternalHostname “mail.shudnow.net” -ClientAuthenticationMethod “Basic”-SSLOffloading:$False</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: njaggers</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3096</link>
		<dc:creator>njaggers</dc:creator>
		<pubDate>Thu, 20 Mar 2008 21:59:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3096</guid>
		<description>Thanks for the great article.  However, I am having a problem with one of the powershell scripts.  When I execute the enable-outlookanywhere command, this is the error I receive:

enable-outlookanywhere : the virtual directory 'rpc' already exists under 'CAServer.domain.local/default web site'.  Parameter name: virtualdirectoryname

Any thoughts on what this means and how to properly execute the script in powershell?</description>
		<content:encoded><![CDATA[<p>Thanks for the great article.  However, I am having a problem with one of the powershell scripts.  When I execute the enable-outlookanywhere command, this is the error I receive:</p>
<p>enable-outlookanywhere : the virtual directory &#8216;rpc&#8217; already exists under &#8216;CAServer.domain.local/default web site&#8217;.  Parameter name: virtualdirectoryname</p>
<p>Any thoughts on what this means and how to properly execute the script in powershell?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Elan Shudnow</title>
		<link>http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3074</link>
		<dc:creator>Elan Shudnow</dc:creator>
		<pubDate>Wed, 19 Mar 2008 15:37:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.shudnow.net/2007/08/10/outlook-2007-certificate-error/#comment-3074</guid>
		<description>Set the URL appropraitely for the ActiveSync service and make sure the FQDN of the URL is contained in the certificate.  You really need to get your DNS set up and get all the FQDN's you need in your certificate.  None of your services will work properly until you do so.

If you need more assistance, I'll check back later today.  I need to get back to work.  Hope you get this sorted.</description>
		<content:encoded><![CDATA[<p>Set the URL appropraitely for the ActiveSync service and make sure the FQDN of the URL is contained in the certificate.  You really need to get your DNS set up and get all the FQDN&#8217;s you need in your certificate.  None of your services will work properly until you do so.</p>
<p>If you need more assistance, I&#8217;ll check back later today.  I need to get back to work.  Hope you get this sorted.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
